CRITICAL🇵🇱 Wersja polska

CVE-2026-38707

CVSS 9.8v3.1pub. 2026-05-28upd. 2026-05-29

A command injection vulnerability exists in the IPSec VPN feature of InHand Networks IR302 firmware V3.5.108, IR305 firmware V1.0.118, IR315 firmware V1.0.118, IR615 firmware V1.0.118, and earlier versions. Attackers can exploit this vulnerability to obtain ROOT privileges on remote target devices.

🤖 AI Analysis
How it works

The vulnerability (CWE-77) consists of improper neutralization of special characters in input data passed to the IPSec VPN function, allowing injection of arbitrary system commands. The attack is possible remotely, without authentication and without user interaction, which classifies it as particularly dangerous (CVSS vector: AV:N/AC:L/PR:N/UI:N). Executed commands run in the system context with the highest ROOT privileges.

Impact

An attacker can take full control of the device, read and modify configuration, intercept network traffic, disrupt VPN tunnel operation, and use the device as an entry point to the internal network.

Mitigation & patch

Apply patches available from the manufacturer according to references (https://www.inhand.com/wp-content/uploads/InHand-PSA-2026-05_EN.pdf). Until firmware is updated, it is recommended to restrict access to the device management interface exclusively to trusted IP addresses and monitor anomalies in network traffic.

Who is affected

InHand Networks IR302 firmware V3.5.108 and earlier, IR305 firmware V1.0.118 and earlier, IR315 firmware V1.0.118 and earlier, IR615 firmware V1.0.118 and earlier.

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Inhandnetworks Ir302

    HW
    Inhandnetworks
    all versions
  • Inhandnetworks Ir302 Firmware

    OS
    Inhandnetworks
    < 3.5.112
  • Inhandnetworks Ir305

    HW
    Inhandnetworks
    all versions
  • Inhandnetworks Ir305 Firmware

    OS
    Inhandnetworks
    < 1.0.121
  • Inhandnetworks Ir315

    HW
    Inhandnetworks
    all versions
  • Inhandnetworks Ir315 Firmware

    OS
    Inhandnetworks
    < 1.0.121
  • Inhandnetworks Ir615

    HW
    Inhandnetworks
    all versions
  • Inhandnetworks Ir615 Firmware

    OS
    Inhandnetworks
    < 1.0.121
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
VPN
CWE
References

Related vulnerabilities

CVE-2026-38704CRITICAL9.8PL ✓same product

Command injection w funkcji WireGuard VPN urządzeń InHand Networks

CVE-2026-38703CRITICAL9.8PL ✓same product

Command injection w funkcji ZeroTier VPN urządzeń InHand Networks

CVE-2026-38702CRITICAL9.8PL ✓same product

Command injection w firmware InHand Networks IR302/IR315/IR615 — dostęp ROOT

CVE-2021-38480CRITICAL9.6PL ✓same product

CSRF w routerze InHand Networks IR615 — zdalne wykonanie akcji administracyjnych

CVE-2021-38470CRITICAL9.1PL ✓same product

Command Injection w routerze InHand Networks IR615 via narzędzie ping